Description
Multiple serious vulnerabilities have been found in Microsoft Office. Malicious users can exploit these vulnerabilities to gain privileges, obtain sensitive information and execute arbitrary code.
Below is a complete list of vulnerabilities:
- An improper font handling in the Office graphics component can be exploited remotely via specially crafted document or website to execute arbitrary code;
- An unspecified vulnerability can be exploited remotely via specially crafted RTF document to obtain sensitive information;
- Multiple vulnerabilities related to improper request handling in Microsoft SharePoint Server can be exploited remotely via specially crafted URL to gain privileges;
- Multiple memory corruption vulnerabilities in Microsoft Excel can be exploited remotely via specially crafted file to execute arbitrary code;
- Multiple memory corruption vulnerabilities in Microsoft Office can be exploited remotely via specially crafted file to execute arbitrary code;
- An unspecified vulnerability can be exploited remotely via specially crafted document to obtain sensitive information.
Original advisories
- CVE-2018-0950
- CVE-2018-1014
- CVE-2018-1034
- CVE-2018-1027
- CVE-2018-1029
- CVE-2018-1032
- CVE-2018-1030
- CVE-2018-1026
- CVE-2018-1005
- CVE-2018-1011
- CVE-2018-1007
- CVE-2018-0920
Exploitation
Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.
Related products
- Microsoft-Office-Compatibility-Pack-for-Word,-Excel,-and-PowerPoint-2007-File-Formats
- Microsoft-Office
- Microsoft-Excel
- Microsoft-Word
CVE list
- CVE-2018-1028 critical
- CVE-2018-0950 warning
- CVE-2018-1014 warning
- CVE-2018-1034 warning
- CVE-2018-1027 critical
- CVE-2018-1029 critical
- CVE-2018-1032 warning
- CVE-2018-1030 critical
- CVE-2018-1026 critical
- CVE-2018-1005 warning
- CVE-2018-1011 critical
- CVE-2018-1007 warning
- CVE-2018-0920 critical
KB list
- 4018355
- 4018311
- 4018357
- 4018344
- 4018341
- 4018350
- 4018354
- 4018360
- 4018362
- 4018319
- 4011628
- 4018342
- 4011586
- 4011717
- 4018337
- 4011719
- 4018339
- 4018328
- 4018356
- 4011712
- 4018359
- 4018347
- 4018353
- 4018343
- 4018336
- 4018288
- 4018330
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!